netscan from exit-node
    Niels Laakmann 
    propell at gmx.de
       
    Tue Oct  2 06:56:46 UTC 2007
    
    
  
Am heiligen Montag, den 01. Oktober im Jahre 2007
schrieb Muelli <Muelli at Auftrags-Killer.org> einmal:
> Hi,
> 
> On 01.10.2007 16:15 Niels Laakmann wrote:
> > I set up a tor-server with an Exit-Policy. A few weeks ago, my
> > Server-Hoster shut down, my IP-Subnet because the Tor-Server
> > has done some IP-scans.
> 
> Mwhaha,
> you are hosting by Hetzner, right? ;-) I get those automaticly generated
> netscan-mails frequently. Some times they shut down the single Tor IP,
> some time they shutdown the whole subnet. Depends on their mood (or
> better: the mood of that IDS).
Yeah .. Thats right :)
> 
> But the funny thing is, that they claim, the netscan abused a
> *considerable* amount of ressources. So everytime I get this kind of
> email, I calculate the amount of generated traffic and look how long the
> scan lasted. Then I calculate the bandwidth and write them, that they
> can't be serious and I demand the freeing of my IPs. Pretty simple
> actually. To speed things up, you could write the "Rechenzentrum" your
> server is located in.
The Problem with that game is, that we also installed a web and a
mailserver on that subnet. Many times, they shut down the subnet for
some hours. For me this time is too long.
You are in right, but I can't afford that.
> 
> Cheers,
>   Muelli
> 
> 
    
    
More information about the tor-talk
mailing list